Snort Alert Monitor 0.2.0 (Default branch)


 
Thread Tools Search this Thread
Special Forums News, Links, Events and Announcements Software Releases - RSS News Snort Alert Monitor 0.2.0 (Default branch)
# 1  
Old 11-01-2008
Snort Alert Monitor 0.2.0 (Default branch)

ImageSAM is a real-time Snort alert monitor. It provides many ways to indicate that you may be experiencing an intrusion attempt on your network, including audio/visual warnings, email warnings, etc. License: FreewareChanges:
Postgres support was added. Online signaturereferences were added. UI cleanup was done. Anabout page was added that lists contributors,libraries, and other contributions made directlyand indirectly.Image

Image

More...
Login or Register to Ask a Question

Previous Thread | Next Thread

2 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

File monitor and alert

whats is the best way to monitor file if it has not updated in last 24 hours. example /var/logmessages in linux , /var/adm/messaged in solaris and alert to email . find with mtime , perl file stat, anyone have any script examples of something better ? (3 Replies)
Discussion started by: nixguynj
3 Replies

2. Shell Programming and Scripting

script to monitor files in a directory and sending the alert

Hi All, We are having important config files in an directory which was accessable by all /auto/config/Testbed/>ls config1.intial config2.intial config3.inital often we find that some of the lines are missing in config files, we doubt if some one is removing. I would like to write... (0 Replies)
Discussion started by: shellscripter
0 Replies
Login or Register to Ask a Question
SAGAN(8)						      System Manager's Manual							  SAGAN(8)

NAME
sagan - Real-time System & Event Log Monitoring System SYNOPSIS
sagan [options] DESCRIPTION
This manual page documents briefly the sagan command. sagan is a multi-threaded, real time system- and event-log monitoring system, but with a twist. Sagan uses a "Snort" like rule set for detecting malicious events happening on your network and/or computer systems. If Sagan detects a potentially bad event, that event can be stored to a Snort database (MySQL/PostgreSQL), send it to a SIEM tool like Pre- lude, or send an email. Sagan is meant to be used in a 'centralized' logging environment, but will work fine as part of a standalone Host IDS system for worksta- tions. OPTIONS
These programs follow the usual GNU command line syntax, with long options starting with two dashes (`-'). A summary of options is included below. -h, --help Show summary of options. -d, --debug Enable debugging -D, --daemon Make process a daemon (fork to the background) -U, --user Run as user (defaults to 'sagan') -c, --chroot Chroot to username 'sagan's home -f, --config Sagan configuration file to load -p, --program Run Sagan in syslog-ng's 'program' mode AUTHOR
sagan was written by Champ Clark III <champ@softwink.com> This manual page was written by Pierre Chifflier <pollux@debian.org>, for the Debian project (and may be used by others). February 15, 2011 SAGAN(8)